Security Update News
Update Information
| Title | PT-2025-17: Unrestricted memory access to internal memory of networking adapter in Broadcom P225p NetXtreme-E Dual-port 10Gb/25Gb Ethernet PCIe Adapter, Broadcom NetXtreme-E family |
|---|---|
| Update ID | PT-2025-17 |
| Type | ptsecurity |
| Published | 2025-10-04T00:00:00 |
| Last Updated | 2025-10-04T00:00:00 |
Security Impact
| CVSS Score | 0.0 |
|---|---|
| Severity | NONE |
| Attack Vector |
Affected CVEs
Update Details
The vulnerability was identified in Broadcom P225p NetXtreme-E Dual-port 10Gb/25Gb Ethernet PCIe Adapter, Broadcom NetXtreme-E family, versions 231.1.162.1 (package version), 1.10.3 (hwrm spec).
The discovered vulnerability is related to improper access control to the network adapter memory read/write debug functions.
**Vulnerability status:** Confirmed by vendor
**Date of vulnerability remediation:** 10.04.2025
**Recommendations:**
* Update the firmware to 2.33 or higher
**Researcher:** Alexey Kovrizhnykh (Positive Technologies)